It's not a new problem. Historically, just about every major cisco customer had a custom version of IOS to a greater or lesser extent: try to manage security updates in that environment. That's a lesser problem now, though, on the other hand, they seem to have shed a lot of engineering talent over the past few years, which is a different problem.

It's an industry-wide problem. Nobody makes enough money from low-end kit to provide proper support and there is no incentive to spend the money on high-end kit because it won't, in the end, influence purchasing decisions. Probably the only thing that might help would be certification requirements for critical infrastructure devices - then watch the deployment of 5G go back 10 years (not that it would necessarily be a bad thing...).

